Skip to Main Content

Oracle Database Discussions

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

Oracle Security - OS, DB Schema, ASMDBA

rontrinidadcabralNov 29 2013 — edited Dec 3 2013

Hi,

I have scenario below:

In Linux box,

1. as oracle user, sqlplus sysadm/password, i can query select name from v$database;

2. as normal user, sqlplus sysadm/password, i cannot query select name from v$database; Error below

uid=30038(normal user) gid=100(users) groups=100(users)

SQL> select name from v$database;

select name from v$database

*

ERROR at line 1:

ORA-00204: error in reading (block 1, # blocks 1) of control file

ORA-00202: control file: '+DATA/databasename/controlfile/current.256.831837415'

ORA-15081: failed to submit an I/O operation to a disk

remotely, as sysadm i can query select name from v$database;

I found out that the normal user should be a member of ASMDBA group to be able to query object located on physical files; on this case +DATA.

question: what/where is the documentation which discuss this Oracle security behavior?

[xxxxx@server disks]$ ls -lrt

total 0

brw-rw---- 1 grid asmdba 120,  97 Nov 15 13:06 DATA01

brw-rw---- 1 grid asmdba 120,  81 Nov 15 13:06 DATA02

brw-rw---- 1 grid asmdba 120,  65 Nov 15 13:06 FRA01

brw-rw---- 1 grid asmdba 120, 113 Nov 18 09:45 DATA03

brw-rw---- 1 grid asmdba 120, 129 Nov 18 09:45 DATA04

brw-rw---- 1 grid asmdba 120, 145 Nov 18 09:45 DATA05

brw-rw---- 1 grid asmdba 120, 161 Nov 18 09:45 DATA06

brw-rw---- 1 grid asmdba 120, 177 Nov 18 09:45 DATA07qe

Comments
Locked Post
New comments cannot be posted to this locked post.
Post Details
Locked on Dec 31 2013
Added on Nov 29 2013
4 comments
716 views